wchen-r7
|
64bc029106
|
Fix Ruby style
|
2016-12-01 14:53:55 -06:00 |
|
wchen-r7
|
90ec367a99
|
Add method to save creds to database
|
2016-12-01 14:52:51 -06:00 |
|
wchen-r7
|
174cd74900
|
Land #7532, Add bypass UAC local exploit via Event Viewer module
|
2016-12-01 11:16:49 -06:00 |
|
wchen-r7
|
1e9d80c998
|
Fix another typo
|
2016-12-01 11:16:06 -06:00 |
|
wchen-r7
|
b8243b5d10
|
Fix a typo
|
2016-12-01 11:15:26 -06:00 |
|
William Vu
|
54684d31bd
|
Land #7641, check_conn? fix for cisco_ssl_vpn
|
2016-11-30 21:14:19 -06:00 |
|
William Vu
|
032312d40b
|
Properly check res
|
2016-11-30 21:03:29 -06:00 |
|
OJ
|
72a20ce464
|
Merge timwr's changes that fix android/reverse_http
|
2016-12-01 09:59:41 +10:00 |
|
William Vu
|
1d6ee7192a
|
Land #7427, new options for nagios_xi_chained_rce
|
2016-11-30 17:11:02 -06:00 |
|
William Vu
|
3e8cdd1f36
|
Polish up USER_ID and API_TOKEN options
|
2016-11-30 17:10:52 -06:00 |
|
Jin Qian
|
ec83a861c8
|
Fix issue #7640 where cisco SSL VPN not move despite server responded
Add the "return true" statement that was missing.
|
2016-11-30 16:25:13 -06:00 |
|
OJ
|
ebf5121359
|
Merge branch 'upstream/master' into add-bypassuac-eventvwr
|
2016-12-01 07:58:16 +10:00 |
|
OJ
|
6890e56b30
|
Remove call to missing function
|
2016-12-01 07:57:54 +10:00 |
|
wchen-r7
|
56505d2cc1
|
Resolve merge conflict
|
2016-11-30 14:33:23 -06:00 |
|
wchen-r7
|
c70c3701c5
|
Fix #7628, concrete5_member_list HTML parser
Fix #7628
|
2016-11-30 14:20:36 -06:00 |
|
William Webb
|
b6bb1995ad
|
Merge branch 'master' of github.com:rapid7/metasploit-framework into upstream-master
|
2016-11-30 12:00:45 -06:00 |
|
William Webb
|
c31758e0ea
|
Land #7627, Fix typo in payloads/linux/armle/mettle
|
2016-11-30 11:58:47 -06:00 |
|
wchen-r7
|
530e9a9bc6
|
Land #7633, fix dell_idrac to stop trying on a user after a valid login
|
2016-11-30 11:46:31 -06:00 |
|
David Maloney
|
d1be2d735f
|
Land #7578, pdf-shaper exploit
Land lsato's work on the pdf-shaper buffer overflow
exploit
|
2016-11-30 11:13:12 -06:00 |
|
Tod Beardsley
|
43cd788350
|
Switch back to echo as cmdstager flavor
|
2016-11-30 10:18:09 -06:00 |
|
Tod Beardsley
|
b75fbd454a
|
Add missing peer in vprint_error
|
2016-11-30 07:59:41 -06:00 |
|
Tod Beardsley
|
657d52951b
|
Linemax 63, switch to printf
|
2016-11-30 07:51:36 -06:00 |
|
Tim
|
78480e31e7
|
remove AutoLoadAndroid
|
2016-11-30 21:23:14 +08:00 |
|
Tim
|
92751714c1
|
fix android/meterpreter/reverse_http
|
2016-11-30 20:12:00 +08:00 |
|
OJ
|
bdc2e7c3cd
|
Fix missing stager_config functions, payload sizes
|
2016-11-30 16:11:51 +10:00 |
|
OJ
|
3fad75641d
|
Final touches to make MSF happy with all refactorings
|
2016-11-30 11:30:59 +10:00 |
|
Tod Beardsley
|
08b9684c1a
|
Add a FORCE_EXPLOIT option for @FireFart
|
2016-11-29 16:37:13 -06:00 |
|
Tod Beardsley
|
57d156a5e2
|
Revert "XML encode the command passed"
This reverts commit 9952c0ac6f.
|
2016-11-29 16:24:26 -06:00 |
|
Tod Beardsley
|
b7904fe0cc
|
Oh silly delimiters and lack thereof
|
2016-11-29 15:53:05 -06:00 |
|
Tod Beardsley
|
9952c0ac6f
|
XML encode the command passed
|
2016-11-29 15:49:55 -06:00 |
|
Tod Beardsley
|
851aae3f15
|
Oops, wrong module
This reverts commit d55d2099c5.
|
2016-11-29 15:15:18 -06:00 |
|
Tod Beardsley
|
d55d2099c5
|
Just one platform thanks
|
2016-11-29 15:08:45 -06:00 |
|
Tod Beardsley
|
4d6b2dfb46
|
Use CmdStager instead
Oh, and this is totally untested as of this commit.
|
2016-11-29 15:03:38 -06:00 |
|
Jin Qian
|
afed1f465e
|
Fix issue 7632 where MSF keeps trying after success.
Thanks to Wei who suggested adding "return :next_user" after success.
|
2016-11-29 14:57:15 -06:00 |
|
Tod Beardsley
|
8de17981c3
|
Get rid of the WiFi key stealer
|
2016-11-29 14:48:04 -06:00 |
|
Tod Beardsley
|
75bcf82a09
|
Never set DefaultPaylod, reverse target options
|
2016-11-29 14:43:10 -06:00 |
|
Tod Beardsley
|
f55f578f8c
|
Title, desc, authors, refs
|
2016-11-29 14:39:38 -06:00 |
|
David Maloney
|
3c9ebb97be
|
Land #7624, Wvu's style fixes
land's wvu's style and text fixes for the
OS X archived messages module
|
2016-11-29 14:05:05 -06:00 |
|
Javier Godinez
|
497e02955b
|
Fixed checking for access keys being retrieved
|
2016-11-29 11:08:55 -08:00 |
|
Jin Qian
|
1beeb99d44
|
Fix issue 7628, username extracted became garbled
Make the regular expression less aggressive.
|
2016-11-29 12:52:57 -06:00 |
|
Adam Cammack
|
878779e14c
|
Fix typo in payloads/linux/armle/mettle
|
2016-11-29 10:12:17 -06:00 |
|
Tod Beardsley
|
d691b86443
|
First commit of Kenzo's original exploit
This is a work in progress, and is merely the copy-paste
of the original PoC exploit from:
https://devicereversing.wordpress.com/2016/11/07/eirs-d1000-modem-is-wide-open-to-being-hacked/
|
2016-11-29 09:13:52 -06:00 |
|
OJ
|
834756c337
|
Rework android structure to function with the multi arch payload
|
2016-11-29 17:55:31 +10:00 |
|
OJ
|
bdfaaf01b2
|
Make multi work with https
|
2016-11-29 15:51:38 +10:00 |
|
OJ
|
bd8f8fd6cb
|
More rework of payload structure to handle multi arch handlers
|
2016-11-29 15:21:13 +10:00 |
|
OJ
|
beca63645e
|
Revamp of java payload structure
|
2016-11-29 11:54:30 +10:00 |
|
Javier Godinez
|
cb0313642b
|
Fixed setting IAM_USERNAME
|
2016-11-29 00:54:49 +00:00 |
|
Javier Godinez
|
46ce1dfaab
|
Now using random string as IAM_USERNAME unless specified
|
2016-11-28 16:32:53 -08:00 |
|
Javier Godinez
|
f8789fef38
|
Moved METADATA_IP to advanced options
|
2016-11-28 16:32:26 -08:00 |
|
William Vu
|
b6fe6c1d38
|
Fix #7597, minor changes to enum_messages
|
2016-11-28 17:37:32 -06:00 |
|